Callback Phishing (TOAD): 'Call This Number'
Instead of a malicious link, a message gives you a phone number to call about a charge or problem — and the 'agent' who answers runs the scam by phone.
Think a message like this reached you? You can check it right now.
What this scam is
Callback phishing (TOAD — telephone-oriented attack delivery) uses an email or text with no dangerous link, just a phone number to call about a supposed charge, subscription, or account problem (this is how the antivirus-renewal and 'subscription' refund scams start). Because there's no link to flag, it slips past filters and your caution. When you call, a scam 'agent' talks you into remote access, card details, a fake refund, or a payment. The defense is to not call numbers in unexpected messages and to verify through official channels.
What it usually looks like
- A message about a charge/subscription with a number to call (no link).
- A believable amount and 'dispute/cancel' framing.
- An 'agent' who wants remote access, card details, or a payment.
- Urgency to call within a deadline.
Common warning signs
- Being directed to call a number to dispute a charge you don't recognize.
- An 'agent' asking for remote access or card details.
- Refund/overpayment stories by phone.
- Numbers provided in unexpected emails/texts.
Example wording scammers use
“Your subscription auto-renewed for $499. To cancel or dispute, call 1-8XX within 24 hours.”
“Payment confirmed — if you didn't authorize this, call our billing team now.”
These are illustrative examples written by ScamSplain, not real messages.
What the scammers want
- You to call the scam line.
- Remote access, card details, or a payment.
- To exploit the absence of a suspicious link.
What to do
- Don't call numbers in unexpected messages; verify charges in your real accounts.
- Never grant remote access or share card details with an inbound 'agent.'
- Treat 'renewal/refund — call this number' as a scam pattern.
- Delete and report.
What to do if you already responded
- Call your bank; remove any screen-share software and scan your device.
- Contact gift-card providers if you paid.
- Report at reportfraud.ftc.gov and ic3.gov.